No more typing reviews! Try our Samantha, our new voice AI agent.

Forcepoint CASB vs Zscaler Private Access (ZPA) comparison

Why PeerSpot?
Sponsored
 

Comparison Buyer's Guide

Executive Summary

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

iboss
Sponsored
Ranking in Cloud Access Security Brokers (CASB)
6th
Average Rating
8.4
Reviews Sentiment
6.9
Number of Reviews
24
Ranking in other categories
Secure Web Gateways (SWG) (6th), Internet Security (3rd), Web Content Filtering (1st), ZTNA as a Service (6th), Secure Access Service Edge (SASE) (7th)
Forcepoint CASB
Ranking in Cloud Access Security Brokers (CASB)
18th
Average Rating
7.2
Reviews Sentiment
5.6
Number of Reviews
10
Ranking in other categories
No ranking in other categories
Zscaler Private Access (ZPA)
Ranking in Cloud Access Security Brokers (CASB)
9th
Average Rating
9.0
Reviews Sentiment
6.9
Number of Reviews
13
Ranking in other categories
No ranking in other categories
 

Mindshare comparison

As of October 2026, in the Cloud Access Security Brokers (CASB) category, the mindshare of iboss is 4.5%, up from 2.1% compared to the previous year. The mindshare of Forcepoint CASB is 1.7%, up from 1.2% compared to the previous year. The mindshare of Zscaler Private Access (ZPA) is 2.1%, up from 1.1% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Access Security Brokers (CASB) Mindshare Distribution
ProductMindshare (%)
iboss4.5%
Zscaler Private Access (ZPA)2.1%
Forcepoint CASB1.7%
Other91.7%
Cloud Access Security Brokers (CASB)
 

Featured Reviews

Ashok Ananthula - PeerSpot reviewer
Senior Consultant Proxy Engineering at a financial services firm with 10,001+ employees
Cloud gateway has strengthened remote web security and now needs better Mac and ISP support
The problem our organization had is that iboss failed for the Mac devices. It is not able to give a successful agent for the Mac agents. That is where in 2025, we had to migrate to the Palo Alto-based platform. If your use case is for just Windows laptops,you can consider this platform as an option One issue is the data center resiliency part. In India especially, they are not tied up with the Tier 1 ISPs like Tata or Airtel; they were having Tier 2 ISPs and encountered many issues reaching few major sites that my organization depends on, and they were having problems that they could not fix quickly. They also lack a mechanism to route that traffic within their data center; rather, they ask customers to make a pac file change to route it to Singapore explicitly. It would be better if they route from their backend , i mean even if I send it to India DC, they should be able to route it internally to make that work; however, they fail to do that and ask the customer to route it in the pac file. Another suggestion is that in China, they do not have the proper setup; they used to have numerous problems with slowness and lack of premium circuits in China as well. That leads to multiple sites working slowly with latency-related issues. So the main issue is the ISP-related problems that need to be solved.
AlexOgbalu - PeerSpot reviewer
Director at LiveFromSpace Limited
Improving support responsiveness has remained critical while access monitoring and compliance needs have been fully addressed
We have the enterprise licenses for the scanning of the codes, both at runtime and in development, and we also have access to Veracode's e-learning platform as well as a bundle from Veracode.All that has been mentioned is the main benefits Forcepoint CASB provides to us, and it helps us to meet compliance requirements that are necessary in our industry. It's important for enterprises considering Forcepoint to work with very good system integrators and value-added resellers because a lot of things needed go beyond just getting the licenses. You need someone skilled to do all those configurations, write all the rules, and make sure you achieve a very stable environment. I am giving this review an overall rating of eight.
BasilJiji - PeerSpot reviewer
System engineer at a retailer with 10,001+ employees
Zero trust access has secured hybrid work and now provides seamless app connectivity
Zscaler Private Access (ZPA) has significantly reduced our attack surface by making our internal apps invisible to the internet. It effectively eliminates lateral movement as users are only connected to the specific application they are authorized to use rather than the entire network segment. Zscaler Private Access (ZPA) is highly stable. The architecture uses a global mesh of service edges with built-in fault tolerance and redundancy, providing an always-on experience that is far more reliable than our old hardware-based VPN concentrator. Zscaler Private Access (ZPA) is elastically scalable because it is a software-defined perimeter and not an appliance-based solution. I can instantly scale to support thousands of additional users without needing to upgrade any physical hardware.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"The solution has massively improved our security posture, giving us full visibility into what our staff does online."
"The security aspect of the solution, particularly the malware behind it, is excellent. That's something that really helped us out. It's not just a simple proxy that just blocks the insights of potential threats that come on behind it. They do malware detection and that helps us a lot."
"From a corporate perspective, I understand that it's important to keep the company data safe."
"Content filtering is the most useful feature of iboss."
"iboss is easy to use despite its complexity. Multiple engineers manage it, but it's significantly more straightforward to administer than traditional VPNs and web proxies."
"This product is solid, fairly easy to use, and reliable."
"Because of iboss, I did not have to assign web filtering tasks to my techs on a daily basis."
"iboss is definitely very good in terms of service."
"Generally, most of our customers are happy with it though."
"The visibility around the usage of cloud applications within my tenant is the most valuable aspect of the solution, as the administrator gets visibility and control of these applications for users whether on-premise or not and whether using pocket devices or their IOD."
"Macro integration is a good feature."
"Forcepoint CASB ensures that access to cloud applications is properly vetted and monitored, helping us unify access across the board regardless of device or location, while advanced notifications and behavior analytics make it easy to detect unknown connections or baseline changes."
"The product offers several advantageous features including real-time control and monitoring capabilities, helping identify and manage various activities including shadow IT activities."
"The tool's most valuable feature is its management ease."
"It gives you value for your investment."
"The product offers an easy initial setup."
"Overall, I would rate it a nine out of ten."
"Zscaler Private Access (ZPA) is the most mature compared to other vendors in terms of features and stability."
"I would assess the security level achieved with Zscaler Private Access (ZPA)'s Zero Trust architecture as inherent to the system."
"Zscaler Private Access (ZPA) does an excellent job offering secure remote access to internal applications for our distributed workforce because it provides a granular way to grant access for specific people with specific applications."
"Zscaler Private Access (ZPA) has significantly reduced our attack surface by making our internal apps invisible to the internet."
"It provides security and has a great service user experience."
"Zscaler has allowed an easy, secure way for us to access our internal resources from outside."
"Zscaler ZPA is easy to administer and is organized in a straightforward and logical manner."
 

Cons

"File integrity monitoring would be very advantageous as an additional feature."
"Their on-premise hardware's network interface is capped at one gigabit, which is sort of a problem. If you stand a filter up where all traffic flows through that, according to them, in order to go above a gigabit, you have to have multiple devices, which in today's IT seems a little bit silly. They could easily put in an SFP port into their device that could accommodate 10 gigs or at least offer a box."
"Its pricing could be better."
"The dashboards for local use could be better."
"If they could implement an extra security layer preventing access to iboss from the open internet, it would be great."
"Fold that in with the risk intelligence they're getting from all of the different subscriptions they are a part of. Now, these security companies subscribe to things like emerging threats, databases, etc. You can fold all this intelligence to decide what's happening on an endpoint. I would love to see them start moving into that space. That would compete directly with Microsoft. Maybe that's why they haven't. Having that ability native within the solution would be great. The other area in which I would love to see improvement is more detailed descriptions of why they block websites."
"Our iboss subscription access should be more secure with an OTP or VPN etc. It is easy to gain access if, for example, hackers obtain my username and password."
"For zero trust implementation, we encountered complexity issues, especially with a large infrastructure company ExxonMobil."
"When using the Forcepoint CASB, and you are a remote worker, basically not in the office, you have to have an agent on your computer, a Forcepoint agent. However, with many other CASB solutions, they can integrate with MDM."
"There are various modules to secure a public cloud, such as Cloud Security Posture Management. You might have seen these features available if you've reviewed solutions like Zscaler or Netskope. A full-fledged CASB should be manageable. However, the tool does not seem to offer complete public cloud visibility. While it provides some cloud visibility and can manage API traffic for Web 2.0, it lacks a specific module for securing public cloud environments."
"If I was to sell a CASB product brand new to somebody, I would sell them Netskope. I wouldn't sell them Forcepoint."
"Forcepoint technical support in general could improve in this area."
"Forcepoint removed the ability to scan for unsanctioned applications on the CASB."
"Integration is an area of the solution that needs to be improved."
"I'd like to see different ways to authenticate users, perhaps different types of authentication."
"Forcepoint CASB is mature and performing its function, but it is not easy to manage and not as fully-featured as competitors."
"The lack of control over the 700+ external IPs through which traffic exits Zscaler is problematic."
"There are some bugs in the solution, which they are clearly working on, and they are still not resolving them. So it's taking some time."
"One area for improvement is setting posture profiles for vendor machines."
"The solution is not scalable; we deploy it in a high-availability environment, but it's not automated."
"The rollout process could be much easier, and the configuration of identity providers like Azure is more complicated than with other zero trust network providers. This can be a pain point."
"The current pain points we sometimes experience relate to the additional security applications we have on the laptops, and sometimes I don't know if I didn't get any notification from the application because it's an agent problem or something security-wise blocking this."
"Sometimes connection errors occur when users are unable to connect to the particular cloud."
"I am not happy with the technical support from Zscaler Private Access (ZPA), particularly in India, where reachability is an issue with salespersons."
 

Pricing and Cost Advice

"It is probably in line with other solutions, but I do not deal with the financial side."
"We had the cost of purchasing a new appliance along with the implementation and licensing costs. However, the following year, the cost of just licensing was similar to what was paid the previous year for a new appliance along with the implementation and licensing costs."
"It is not expensive, and it is also not cheap. iboss is priced right in the sweet spot for the number of features it offers."
"The overall pricing for iboss is very competitive and transparent."
"It is expensive compared to one of its competitors."
"We have not priced the solution recently, but they were competitive with other vendors in the past."
"The solution is not that expensive compared to Zscaler. Netskope is between Forcepoint CASB and Zscaler in terms of cost. Forcepoint CASB would be the first choice because it negotiates well and offers a perpetual license, though it may seem subscription-based. I rate its pricing a six out of ten."
"The pricing really depends on the size of the customer's business because it is price-relevant to the environment."
Information not available
report
Use our free recommendation engine to learn which Cloud Access Security Brokers (CASB) solutions are best for your needs.
915,341 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
11%
Manufacturing Company
10%
Comms Service Provider
8%
Construction Company
7%
Comms Service Provider
11%
Outsourcing Company
10%
Construction Company
10%
Healthcare Company
9%
Outsourcing Company
16%
Financial Services Firm
13%
Insurance Company
9%
Comms Service Provider
9%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business13
Midsize Enterprise7
Large Enterprise11
By reviewers
Company SizeCount
Small Business6
Midsize Enterprise2
Large Enterprise3
By reviewers
Company SizeCount
Small Business2
Midsize Enterprise4
Large Enterprise7
 

Questions from the Community

What needs improvement with iboss?
I think iboss could be improved by making reporting and dashboard customization more flexible, and simplifying troubl...
What is your primary use case for iboss?
I use iboss as a cloud-based secure web gateway to provide secure internet access, web filtering, and protect remote ...
What is your experience regarding pricing and costs for iboss?
My experience with iboss's pricing structure, setup cost, and licensing model has been positive, straightforward, and...
What is your experience regarding pricing and costs for Forcepoint CASB?
I would put the pricing of Forcepoint CASB at a five, closer to a four. I don't think it's very expensive, but it's a...
What needs improvement with Forcepoint CASB?
From a functionality perspective, I don't have any recommendations, but in terms of support, the speed of support is ...
What is your primary use case for Forcepoint CASB?
Forcepoint CASB ensures that access to cloud applications is properly vetted and monitored. We have a lot of remote a...
What is your experience regarding pricing and costs for Zscaler Private Access (ZPA)?
Regarding pricing, setup costs, and licensing for Zscaler Private Access (ZPA), while it is not the cheapest solution...
What needs improvement with Zscaler Private Access (ZPA)?
After deploying Zscaler Private Access (ZPA), I notice a reduction in VPN-related support tickets, particularly durin...
What is your primary use case for Zscaler Private Access (ZPA)?
My primary use case for Zscaler Private Access (ZPA) is securing application-level access to internal applications wi...
 

Also Known As

iBoss Cloud Platform
Imperva Skyfence
No data available
 

Overview

 

Sample Customers

Trusted by global enterprises and government agencies.
Zions Bank, GE Healthcare, HomeAway, Logitech, Universal, California National Resources Agency and many mor
Information Not Available
Find out what your peers are saying about Forcepoint CASB vs. Zscaler Private Access (ZPA) and other solutions. Updated: September 2026.
915,341 professionals have used our research since 2012.